CVE-2026-70653 | libvips up to 8.18.2 Radiance RLE decoder radiance.c scanline_read_old heap-based overflow

SecurityVulns

A vulnerability was found in libvips up to 8.18.2. It has been rated as problematic. The affected element is the function scanline_read_old of the file libvips/foreign/radiance.c of the component Radiance RLE decoder. This manipulation causes heap-based buffer overflow.

This vulnerability appears as CVE-2026-70653. The attack may be initiated remotely. There is no available exploit.

Upgrading the affected component is advised.VulDB Recent EntriesRead More